CVE-2015-8086

Severity CVSS v4.0:
Pending analysis
Type:
CWE-326 Inadequate Encryption Strength
Publication date:
03/10/2016
Last modified:
12/04/2025

Description

Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S5300 routers with software before V200R007C00; and S5700 routers with software before V200R007C00SPC500 makes it easier for remote authenticated administrators to obtain encryption keys and ciphertext passwords via vectors related to key storage.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:quidway_s5300_firmware:v200r001c00spc300:*:*:*:*:*:*:*
cpe:2.3:h:huawei:quidway_s5300:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:quidway_s9300_firmware:v200r001c00spc300:*:*:*:*:*:*:*
cpe:2.3:o:huawei:quidway_s9300_firmware:v200r002c00spc100:*:*:*:*:*:*:*
cpe:2.3:o:huawei:quidway_s9300_firmware:v200r003c00spc500:*:*:*:*:*:*:*
cpe:2.3:h:huawei:quidway_s9300:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:s5700_firmware:v200r001c00:*:*:*:*:*:*:*
cpe:2.3:o:huawei:s5700_firmware:v200r002c00:*:*:*:*:*:*:*
cpe:2.3:o:huawei:s5700_firmware:v200r003c00:*:*:*:*:*:*:*
cpe:2.3:o:huawei:s5700_firmware:v200r005c00:*:*:*:*:*:*:*
cpe:2.3:o:huawei:s5700_firmware:v200r006c00:*:*:*:*:*:*:*
cpe:2.3:h:huawei:s5700:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:s12700_firmware:v200r005c00:*:*:*:*:*:*:*
cpe:2.3:o:huawei:s12700_firmware:v200r006c00:*:*:*:*:*:*:*
cpe:2.3:h:huawei:s12700:-:*:*:*:*:*:*:*